Static | ZeroBOX

PE Compile Time

2024-10-31 04:39:25

PE Imphash

f34d5f2d4577ed6d9ceec516c1f5a744

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x00023474 0x00023600 7.54257779535
.rsrc 0x00026000 0x000006f0 0x00000800 3.76419670858
.reloc 0x00028000 0x0000000c 0x00000200 0.101910425663

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x000260a0 0x00000464 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x00026504 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

Imports

Library mscoree.dll:
0x402000 _CorExeMain

!This program cannot be run in DOS mode.
`.rsrc
@.reloc
ecTjeT
W0T(dz
=r;6W
7}-b.X&
2~insk55
LGX\%E
j$o|j6}
#XRrW&
oEpvr}
hTXW7Hg
lQy?hM'
_?8pX}
DK:J-
iA>h3m
oyb$8X
I#u `v
LU2tpL
{t`_IR
M DETq
aE?*Xi
xZjOE(l
KtpGF+
Z54A?
HJD*$
0P_758
s_Uv\[-
7cWw/$H
Wu&&`if9
Ig[[?$
mt95L'
<!0;7C
C5i^If
wf,-o[
}(eo||f
b#B]8.Ks
"&@ ?-
`!@nip
I#`ous
qO;W0]
##69|bkL
X9n.o("
|]&1W{
qHxJi?|
]mc>-|
@zq`1v
6q!J>v
weG ]<
)>[wa($
I-!B)TZd
`7@JQ
hv'aa5
u`[LK6
>px c.
1F+^6&9
wXmUZF
p]3fth
~qw1d3t
&4.kE2p
PwfUU3"
;kyRsP
'KYbMe
5K1y`_H+C
;I>FA6A
..J\V5t?
Tw'c6]`
$Q88.
1Q==7;
Y]8cs0dy
QZv\iLGj
&;kP>I
{n#L2OE
S1`K4;
p3Di='S
gO=7#J
d5Rrew
wyP<L
XN03V=w
9"EnN#
beNxVp
B(1euT
l>[W5+
^s]%7k
_{[ Qq
It@<#Z
%m+sJ^&
-TdcsG
?@i*c8
jKb9)|
E!GsfJ
M?FN@f
ghOZ_(}I7
4wZbNB=
K4[)ib
Rp(*1_3S
3k(Qbe>
x*-F~J
F}\*TB
A;WNPz% %
a/G|;V
!f1A}x
l/{2y.+
Ha",M>
:?"KiK
0rF]evi
wt7A;2z
PKy"~D
MNs)fB
-~&^!U
n&! {6
S!.lh:{>n@
bIChLf
\!!;\"xu
B2Cek.
).&`vQ1Z#
[g/fT/>
xuzpa>2
7G<b=H
w#eDB#
5m%Q\X
Jq$Dta
Ca`c`p
yslq(U
A%cg-{QG"
's!1c6
8A^UU=
*FF,"A6G
9w8E/LH
p.r16!
GfUP,#
B(1-},
5Mvp,~
-Y\~|/
$5gEZt
$:M)e=
O&7KrB
}}P']T
8LH74e
5%A%&<
y5@[:I
Q&v[Hi
hlh9jxla
#_/@d~
4|&.Db
H;VB<9%X
$)PqGyx
3yeJm9
.U.$Jo@
8W,(JHG
i.F/nG
^X{(`U-$
{w2x8i
[iV9oM
agxV#)
xXvVJe
7IFAS:
Yr->Ek
;_Yu1I0
));o@(
Sg_vQX
bO.Fr_1`W"
1Q|$]-
G!tv3t
jao"<
Z?_b`
SHhZ G
\5?Z S
<tba8-
~}G;Z h
8WZ .P
yMd:
&N%&8s
Z `2 Ya8-
F6Z M*HFa
{b%e%&8[
QK&%&8,
U}Z 'XS
Z dap'a8D
#bBa8x
+*SsZ
03%&8-
_bj2
+H %nz
_bY*
s QE,xa%
?>%&8l
>EfZ w,
efQb%&8
,93Za8
w^Za8`
qYaSZ
|HZ A[
Z_bX
Wk.,Z
f<v/a%
Y_cX*
1\}
1\}%&+
\oH~8K
.@ dU(
ZRB%
~Z 4U-Ga+
N~|%+
o9Za8R
dVu&%&
v/%&8I
[K%&81
E42X%+
Jy}s%+
Z =xO)a8u
+cl(T
cK6Z W[
<cHZ z
Z R-t)a8
\}or
iqjZ 3d
4W2Z ^
v4.0.30319
#Strings
ZacharyLiamPatrick.pn
<Module>
mscorlib
Assembly
System.Reflection
.cctor
System
RuntimeTypeHandle
MethodInfo
MethodBase
Thread
System.Threading
ParameterizedThreadStart
ResolveEventArgs
ValueType
Object
Stream
System.IO
Environment
SpecialFolder
LoadLibrary
kernel32.dll
GetProcAddress
CloseHandle
WaitForSingleObject
MemoryStream
Encoding
System.Text
StreamWriter
TextWriter
IDisposable
FileAttributes
Delegate
MulticastDelegate
Invoke
BeginInvoke
IAsyncResult
AsyncCallback
callback
object
EndInvoke
result
ZacharyLiamPatrick
AssemblyTitleAttribute
AssemblyDescriptionAttribute
AssemblyConfigurationAttribute
AssemblyCompanyAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyTrademarkAttribute
ComVisibleAttribute
System.Runtime.InteropServices
GuidAttribute
AssemblyFileVersionAttribute
CompilationRelaxationsAttribute
System.Runtime.CompilerServices
RuntimeCompatibilityAttribute
String
GetTypeFromHandle
GetMethod
Concat
Equals
FailFast
set_IsBackground
get_CurrentThread
Debugger
System.Diagnostics
get_IsAttached
IsLogging
get_IsAlive
ReadByte
get_Length
UInt32
RuntimeHelpers
InitializeArray
RuntimeFieldHandle
GetElementType
CreateInstance
Buffer
BlockCopy
get_UTF8
GetString
Intern
AppDomain
get_CurrentDomain
ResolveEventHandler
add_AssemblyResolve
get_FullName
get_Name
op_Equality
GetFolderPath
Replace
Combine
IntPtr
op_Inequality
get_ASCII
set_Position
ToArray
Convert
FromBase64String
Dispose
Substring
GetAttributes
SetAttributes
Exists
Delete
WriteAllBytes
Marshal
GetDelegateForFunctionPointer
idea banana algorithm
Hsmooth lazy understand computer service us them bright network integrate
move moon it
fast build he
them new direct
#black she dark old improve (c) 2024
complex jump it system small
$4f65cb14-2a6e-445d-95b8-0eaa59d7e299
8.7.2.5
WrapNonExceptionThrows
_CorExeMain
mscoree.dll
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
Comments
smooth lazy understand computer service us them bright network integrate
CompanyName
fast build he
FileDescription
idea banana algorithm
FileVersion
8.7.2.5
InternalName
ZacharyLiamPatrick.pn
LegalCopyright
black she dark old improve (c) 2024
LegalTrademarks
complex jump it system small
OriginalFilename
ZacharyLiamPatrick.pn
ProductName
them new direct
ProductVersion
8.7.2.5
Assembly Version
8.7.2.5
Antivirus Signature
Bkav W32.AIDetectMalware.CS
Lionic Trojan.Win32.Injuke.16!c
Elastic malicious (high confidence)
ClamAV Clean
CMC Clean
CAT-QuickHeal Trojan.MSIL
Skyhigh BehavesLike.Win32.Generic.cc
ALYac Gen:Variant.Ser.Jalapeno.72
Cylance Unsafe
Zillya Clean
CrowdStrike Clean
Alibaba Clean
K7GW Clean
K7AntiVirus Clean
huorong Clean
Baidu Clean
VirIT Clean
Paloalto generic.ml
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 a variant of MSIL/TrojanDropper.Agent.GGG
APEX Malicious
Avast Win32:DropperX-gen [Drp]
Cynet Clean
Kaspersky HEUR:Trojan.MSIL.Injuke.gen
BitDefender Gen:Variant.Ser.Jalapeno.72
NANO-Antivirus Clean
ViRobot Trojan.Win.Z.Ser.147968
MicroWorld-eScan Gen:Variant.Ser.Jalapeno.72
Tencent Trojan.Msil.Kryptik.16001337
Sophos Mal/Generic-S
F-Secure Trojan.TR/AD.Nekark.ywapf
DrWeb Trojan.PackedNET.3006
VIPRE Gen:Variant.Ser.Jalapeno.72
TrendMicro Clean
McAfeeD Real Protect-LS!57AD05A16763
Trapmine malicious.moderate.ml.score
CTX exe.trojan.msil
Emsisoft Gen:Variant.Ser.Jalapeno.72 (B)
Ikarus Win32.Outbreak
FireEye Generic.mg.57ad05a16763721a
Jiangmin Clean
Webroot Clean
Varist W32/ABTrojan.JQMN-2250
Avira TR/AD.Nekark.ywapf
Fortinet PossibleThreat
Antiy-AVL Clean
Kingsoft MSIL.Trojan.Injuke.gen
Gridinsoft Ransom.Win32.Wacatac.sa
Xcitium Clean
Arcabit Trojan.Ser.Jalapeno.72
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Wacatac.B!ml
Google Detected
AhnLab-V3 Dropper/Win.DropperX-gen.C5688502
Acronis Clean
McAfee Artemis!57AD05A16763
TACHYON Clean
VBA32 Clean
Malwarebytes Trojan.Crypt.MSIL.Generic
Panda Trj/Chgt.AD
Zoner Clean
TrendMicro-HouseCall Clean
Rising Malware.Obfus/MSIL@AI.84 (RDM.MSIL2:ZCMww9qzF4XXO2lV8ptSIA)
Yandex Clean
SentinelOne Static AI - Malicious PE
MaxSecure Trojan.Malware.300983.susgen
GData Gen:Variant.Ser.Jalapeno.72
AVG Win32:DropperX-gen [Drp]
DeepInstinct MALICIOUS
alibabacloud Clean
No IRMA results available.